PortscanGeoinfo is a plugin for the powerful Prelude correlation engine. This plugin correlates alerts from Snort NIDS and OSSEC HIDS sensors regarding portscans. Geographical information (GeoIP) is included in the correlated alert.

Features

  • GeoIP lookup
  • correlation of IDMEF events (prelude-correlator)
  • correlation of portscans

Project Activity

See All Activity >

License

GNU General Public License version 2.0 (GPLv2)

Follow PortscanGeoinfo

PortscanGeoinfo Web Site

Other Useful Business Software
Build on Google Cloud with $300 in Free Credit Icon
Build on Google Cloud with $300 in Free Credit

New to Google Cloud? Get $300 in free credit to explore Compute Engine, BigQuery, Cloud Run, Vertex AI, and 150+ other products.

Start your next project with $300 in free Google Cloud credit. Spin up VMs, run containers, query exabytes in BigQuery, or build AI apps with Vertex AI and Gemini. Once your credits are used, keep building with 20+ products with free monthly usage, including Compute Engine, Cloud Storage, GKE, and Cloud Run functions. Sign up to start building right away.
Start Free Trial
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of PortscanGeoinfo !

Additional Project Details

Operating Systems

FreeBSD, Linux, NetBSD, OpenBSD

Languages

English

Intended Audience

Advanced End Users, System Administrators

Programming Language

Python

Related Categories

Python Network Monitoring Software

Registered

2011-01-21